
Certified Information Security Manager
Domain 2Objective 6
Risk Monitoring and Reporting CISM Practice Questions (Page 8)
Part of the Domain 2: Information Security Risk Management domain, which accounts for 20% of the CISM exam.
37questions here
8free pages
9concepts
20%of the exam
Questions 36–37
- 36
After a quarterly risk review, the CISO notices that the same risk has been reported as 'high' for the past three quarters despite a treatment plan being in place. What is the most appropriate action to improve the risk management process?
Select an answer first - 37
Which activity is a key component of an ongoing risk monitoring process?
Select an answer first
Finished these 2 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to CISM
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “CISM” is a trademark of its owner, used for identification only.